보안뉴스 아카이브
긴급도 90/100 심각도 미평가 · 미평가 악용확률 99.5% CISA KEV · 2023-08-22 랜섬웨어 악용

CVE-2023-27532

CISA 기관 조치 기한: 2023-09-12

Veeam Backup & Replication

Veeam Backup & Replication Cloud Connect component contains a missing authentication for critical function vulnerability that allows an unauthenticated user operating within the backup infrastructure network perimeter to obtain encrypted credentials stored in the configuration database. This may lead to an attacker gaining access to the backup infrastructure hosts.
KEV 필수 조치: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

NVD 상세 ↗   참고 링크 ↗

← 취약점 목록